NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56443  CVE-2007-4318  Cross-site scripting (XSS) vulnerability in Forms/General_1 in the management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allows remote authenticated administrators to inject arbitrary web script or HTML via the sysSystemName parameter.    4.3  Medium  2017-01-07  2008-11-15  View
56955  CVE-2007-4844  X-Diesel Unreal Commander 0.92 build 565 and 573 does not properly react to an FTP server"s behavior after sending a "CWD /" command, which allows remote FTP servers to cause a denial of service (infinite loop) by (1) repeatedly sending a 550 error response, or (2) sending a 550 error response and then disconnecting.    4.3  Medium  2017-01-07  2008-11-15  View
52348  CVE-2007-0116  Digger Solutions Intranet Open Source (IOS) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for data/intranet.mdb.    7.5  High  2017-01-07  2008-11-15  View
52604  CVE-2007-0377  Multiple SQL injection vulnerabilities in Xoops 2.0.16 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in kernel/group.php in core, (2) the lid parameter in class/table_broken.php in the Weblinks module, and other unspecified vectors.    7.5  High  2017-01-07  2008-11-15  View
53116  CVE-2007-0901  Multiple cross-site scripting (XSS) vulnerabilities in Info pages in MoinMoin 1.5.7 allow remote attackers to inject arbitrary web script or HTML via the (1) hitcounts and (2) general parameters, different vectors than CVE-2007-0857. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-07  2008-11-15  View

Page 15254 of 17672, showing 5 records out of 88360 total, starting on record 76266, ending on 76270

Actions